Senior Cybersecurity Engineer - Job Description Position Summary
We are looking for a Senior Cybersecurity Engineer to conduct vulnerability assessments, penetration testing, and ensure compliance with NCA regulations and global cybersecurity standards. The role focuses on identifying security weaknesses, recommending solutions, and strengthening our security posture.
Key Responsibilities Vulnerability Assessment & Penetration Testing
- Conduct vulnerability assessments on networks, systems, and applications
- Perform penetration testing (external and internal)
- Execute web application security testing
- Document findings and provide clear remediation recommendations
- Validate fixes through re-testing
- Conduct periodic phishing simulations
Compliance
- Ensure compliance with NCA Essential Cybersecurity Controls (ECC)
- Support NCA Critical Systems Cybersecurity Controls (CSCC) implementation
- Maintain alignment with ISO 27001 and NIST frameworks
- Prepare documentation for audits and assessments
- Track compliance status and report gaps
Security Operations
- Monitor and respond to security alerts
- Investigate security incidents when they occur
- Review security configurations and recommend improvements
- Support security awareness training efforts
- Assess third-party/vendor security when needed
Reporting
- Prepare technical reports for IT team
- Create executive summaries for management
- Maintain security metrics and dashboards
- Document security policies and procedures
Required QualificationsEducation
- Bachelor's degree in Computer Science, IT, Cybersecurity, or related field
Experience
- 5-7 years in cybersecurity or information security
- 3+ years hands-on experience with vulnerability assessments and penetration testing
- Experience with NCA compliance requirements
Technical Skills
Must Have:
- Penetration testing tools: Burp Suite, Metasploit, Nmap, Nessus or Qualys
- Web application security testing (OWASP Top 10)
- Network security fundamentals (firewalls, VPNs, IDS/IPS)
- Operating systems security (Windows, Linux)
- Scripting basics (Python or Bash)
- Report writing and documentation
Good to Have:
Key Competencies
- Strong analytical and problem-solving skills
- Clear written and verbal communication
- Ability to explain technical issues to non-technical stakeholders
- Attention to detail
- Self-motivated and able to work independently
- Arabic language proficiency